First published: Sat Mar 29 2025(Updated: )
shopxo v6.4.0 has a ssrf/xss vulnerability in multiple places.
Affected Software | Affected Version | How to fix |
---|---|---|
composer/shopxo/shopxo | <=6.4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
GHSA-24cf-848g-762c is categorized as a high-severity vulnerability due to its potential for SSRF and XSS exploitation.
To fix GHSA-24cf-848g-762c, upgrade to the latest version of shopxo beyond 6.4.0 that patches the vulnerability.
GHSA-24cf-848g-762c involves server-side request forgery (SSRF) and cross-site scripting (XSS) vulnerabilities.
Shopxo versions up to and including 6.4.0 are affected by GHSA-24cf-848g-762c.
Yes, the vulnerabilities in GHSA-24cf-848g-762c can potentially lead to data breaches if exploited.